CVE-2023-49722

Network port 8899 open in WiFi firmware of BCC101/BCC102/BCC50 products, that allows an attacker to connect to the device via same WiFi network.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:bosch:bcc101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:bcc101:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:bosch:bcc102_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:bcc102:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:bosch:bcc50_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:bcc50:-:*:*:*:*:*:*:*

History

16 Jan 2024, 15:52

Type Values Removed Values Added
CPE cpe:2.3:o:bosch:bcc50_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:bosch:bcc102_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:bcc50:-:*:*:*:*:*:*:*
cpe:2.3:o:bosch:bcc101_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:bosch:bcc101:-:*:*:*:*:*:*:*
cpe:2.3:h:bosch:bcc102:-:*:*:*:*:*:*:*
References () https://psirt.bosch.com/security-advisories/BOSCH-SA-473852.html - () https://psirt.bosch.com/security-advisories/BOSCH-SA-473852.html - Vendor Advisory
First Time Bosch bcc50 Firmware
Bosch
Bosch bcc102 Firmware
Bosch bcc101 Firmware
Bosch bcc50
Bosch bcc102
Bosch bcc101
CVSS v2 : unknown
v3 : 8.3
v2 : unknown
v3 : 6.5
CWE NVD-CWE-Other

09 Jan 2024, 14:01

Type Values Removed Values Added
Summary
  • (es) El puerto de red 8899 está abierto en el firmware WiFi de los productos BCC101/BCC102/BCC50, que permite a un atacante conectarse al dispositivo a través de la misma red WiFi.

09 Jan 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-09 10:15

Updated : 2024-01-16 15:52


NVD link : CVE-2023-49722

Mitre link : CVE-2023-49722

CVE.ORG link : CVE-2023-49722


JSON object : View

Products Affected

bosch

  • bcc102
  • bcc102_firmware
  • bcc50
  • bcc101
  • bcc101_firmware
  • bcc50_firmware
CWE
NVD-CWE-Other CWE-1125

Excessive Attack Surface